Under attack? We respond the same day.
Called in as soon as the facts are established, we stop the attack, secure the network and Microsoft 365 tenants, document the investigation and cooperate with the investigating authorities. We then strengthen your defences so it doesn't happen again.
What to do right away, even before we arrive
Our practical factsheets, to keep close at hand
Three free double-sided documents, ready to print or share with your teams.
Cyberattack: the right reflexes to respond
Recognising an attack, the 6 actions to take in the first hour, what you must not do, who to call and what deadlines to meet (complaint, CNIL, insurer), followed by the reflexes for each type of attack.
Download the memo (PDF)Cyber incident response and crisis management
The threat landscape in the Pacific, the right reflexes while you wait for our call, and the details of our response: remote from the first call, on-site response in Tahiti, with our director travelling to you in the event of a critical incident.
Download the French Polynesia factsheet (PDF)Cyber incident response and crisis management
The threat landscape in the Antilles, the right reflexes while you wait for our call, and the details of our response: remote from the first call, on-site in Martinique and Guadeloupe from Sainte-Marie.
Download the Martinique factsheet (PDF)Five phases, one point of contact
They called on us in the middle of an attack, or to avoid one
The local authorities concerned are not named.
“Called in as soon as the facts came to light, TAVITA CYBERSECURITY responded very quickly to stop the attack. It secured our network, including our Microsoft 365 tenant, carried out an initial investigation and diagnostic recorded in a report, and worked closely with the national police's cybercrime investigation services.”
Chief Administrative Officer“TAVITA CYBERSECURITY responded very quickly to stop the attack our municipality was facing. It carried out the intervention effectively, securing the network and then implementing the necessary corrective measures, and ran a cybersecurity awareness session for our staff.”
The Mayor“TAVITA CYBERSECURITY brought us its expertise in consulting, auditing, technical support and recommendations, with professionalism, availability and rigour. This support strengthened our infrastructure's security and improved our practices. We recommend TAVITA CYBERSECURITY for its expertise and thoroughness.”
The MayorAfter the crisis: not suffering the same attack twice
In the cases we handle, the attack almost always starts from a Microsoft 365 account without MFA with forwarding rules set up by the attacker, or from a stolen VPN access on an unpatched firewall. The “Strengthen” phase fixes these root causes:
- MFA everywhere, review of access rights and mailbox rules
- Immutable, offline, tested backups
- Updating and hardening exposed equipment
- Staff awareness and anti-fraud procedure for bank transfers
- The "what if it happens" plan: who to call, what to unplug, how to restore, what to report
Preparing before the incident
A cyber crisis tabletop exercise with your management, a written and well-known DRP, and a follow-up contract with a direct line all cut your downtime significantly on the day it happens.
